Patentable/Patents/US-11936657
US-11936657

Systems and methods for enhanced authorization messages

PublishedMarch 19, 2024
Assigneenot available in USPTO data we have
Inventorsnot available in USPTO data we have
Technical Abstract

Techniques for authorizing a transaction or interaction of a user that is modified by authentication information for the same user are described herein. In embodiments, an authorization request message for a transaction and a session identifier may be received from a transport computer or a resource provider computer. A portion of pre-analyzed data about the user and the one or more interactions may be obtained, from a database, based on the session identifier. A risk analysis for the transaction using the portion of the pre-analyzed data may be performed to generate a value. The authorization request message may be modified to include the portion of the pre-analyzed data and the value. The modified authorization request message may be transmitted to an authorizing computer.

Patent Claims
13 claims

Legal claims defining the scope of protection. Each claim is shown in both the original legal language and a plain English translation.

Claim 2

Original Legal Text

2. The computer-implemented method of claim 1, further comprising transmitting, by the processing computer and to the resource provider computer, the portion of pre-analyzed data and the value.

Plain English Translation

A computer-implemented method receives an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains pre-analyzed user data from a database based on the session ID, performs a risk analysis to generate a value, and modifies the authorization request to include this data and value. The modified request is transmitted to an authorizing computer. Additionally, the processing computer transmits the obtained pre-analyzed data and the generated risk value back to the resource provider computer that initiated the request.

Claim 3

Original Legal Text

3. The computer-implemented method of claim 1, wherein modifying the authorization request message to include the portion of pre-analyzed data and the value includes modifying a data field in the authorization request message.

Plain English Translation

A computer-implemented method receives an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains pre-analyzed user data from a database based on the session ID, performs a risk analysis to generate a value, and modifies the authorization request to include this data and value. Specifically, modifying the authorization request message involves updating a particular data field within the message to embed the pre-analyzed data and the generated risk value. The modified request is then transmitted to an authorizing computer.

Claim 4

Original Legal Text

4. The computer-implemented method of claim 1, further comprising updating the supplemental database with updated interactions by the user by utilizing an application programming interface (API) call by the resource provider computer to the supplemental database.

Plain English Translation

A computer-implemented method receives an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains pre-analyzed user data from a supplemental database based on the session ID, performs a risk analysis to generate a value, and modifies the authorization request to include this data and value. The modified request is transmitted to an authorizing computer. Furthermore, the supplemental database can be updated with the user's latest interactions via an API call made by the resource provider computer.

Claim 5

Original Legal Text

5. The computer-implemented method of claim 1, wherein the session identifier includes at least a key or a unique user identifier.

Plain English Translation

A computer-implemented method receives an authorization request message for a transaction and a session identifier from a transport computer or resource provider. The session identifier used in this process is critical and includes at least a key or a unique user identifier. The method then obtains pre-analyzed user data from a database based on this session ID, performs a risk analysis to generate a value, and modifies the authorization request to include the pre-analyzed data and the value. Finally, the modified request is transmitted to an authorizing computer.

Claim 6

Original Legal Text

6. The computer-implemented method of claim 1, wherein generating the authorization response message by the authorizing computer includes the authorizing computer not performing an analysis of the transaction based at least in part on the modified authorization request message.

Plain English Translation

A computer-implemented method receives an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains pre-analyzed user data from a database based on the session ID, performs a risk analysis to generate a value, and modifies the authorization request to include this data and value. The modified request is transmitted to an authorizing computer. When the authorizing computer generates its authorization response, it specifically does not perform its own analysis of the transaction, relying instead on the risk information provided in the modified authorization request message.

Claim 8

Original Legal Text

8. The server of claim 7, wherein the pre-analyzed data is analyzed by one or more authentication risk models associated with a plurality of authentication requesters.

Plain English Translation

A server, comprising processors configured to execute a method for enhancing authorization messages. This method involves receiving an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains a portion of pre-analyzed user data from a database based on the session identifier. This pre-analyzed data has been processed by one or more authentication risk models associated with multiple authentication requesters. The method performs a risk analysis using this data to generate a value, modifies the authorization request to include the data and value, and transmits the modified request to an authorizing computer.

Claim 9

Original Legal Text

9. The server of claim 7, wherein the pre-analyzed data includes one or more of a device identifier associated with the transaction, transaction detail information, personal information for the user, internet protocol (IP) address information, web site traffic, or web site interaction information.

Plain English Translation

A server, comprising processors configured to execute a method for enhancing authorization messages. This method involves receiving an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains a portion of pre-analyzed user data from a database based on the session identifier. This pre-analyzed data can include details such as a device identifier, transaction details, personal user information, IP address, web site traffic, or web site interaction information. The method performs a risk analysis using this data to generate a value, modifies the authorization request to include the data and value, and transmits the modified request to an authorizing computer.

Claim 10

Original Legal Text

10. The server of claim 7, wherein modifying the authorization request message includes setting one or more flags associated with the authorization request message for the transaction.

Plain English Translation

A server, comprising processors configured to execute a method for enhancing authorization messages. This method involves receiving an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains a portion of pre-analyzed user data from a database based on the session identifier, and performs a risk analysis using this data to generate a value. To modify the authorization request message, the method sets one or more specific flags associated with the message, which effectively include the pre-analyzed data and the generated risk value. The modified request is then transmitted to an authorizing computer.

Claim 11

Original Legal Text

11. The server of claim 7, wherein the method further includes transmitting, to the transport computer, the portion of pre-analyzed data and the value.

Plain English Translation

A server, comprising processors configured to execute a method for enhancing authorization messages. This method involves receiving an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains a portion of pre-analyzed user data from a database based on the session identifier, performs a risk analysis using this data to generate a value, and modifies the authorization request to include the data and value. The modified request is transmitted to an authorizing computer. Additionally, the server transmits the obtained pre-analyzed data and the generated risk value back to the transport computer that originally sent the request.

Claim 13

Original Legal Text

13. The processor computer of claim 12, wherein the method further includes transmitting, to a resource provider associated with the transport computer, the portion of pre-analyzed data and the value.

Plain English Translation

A processor computer, comprising processors configured to execute a method for enhancing authorization messages. This method involves receiving an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains a portion of pre-analyzed user data from a database based on the session identifier, performs a risk analysis using this data to generate a value, and modifies the authorization request to include the data and value. The modified request is transmitted to an authorizing computer. Additionally, the processor computer transmits the obtained pre-analyzed data and the generated risk value to a resource provider associated with the transport computer.

Claim 14

Original Legal Text

14. The processor computer of claim 12, wherein modifying the authorization request message to include the portion of pre-analyzed data and the value includes modifying a data field in the authorization request message.

Plain English Translation

A processor computer, comprising processors configured to execute a method for enhancing authorization messages. This method involves receiving an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains a portion of pre-analyzed user data from a database based on the session identifier, performs a risk analysis using this data to generate a value, and modifies the authorization request to include the data and value. Specifically, modifying the authorization request message involves updating a particular data field within the message to embed the pre-analyzed data and the generated risk value. The modified request is then transmitted to an authorizing computer.

Claim 15

Original Legal Text

15. The processor computer of claim 12, wherein the method further includes generating, by the authorizing computer, the authorization response message by performing an additional analysis of the transaction based at least in part on the modified authorization request message.

Plain English Translation

A processor computer, comprising processors configured to execute a method for enhancing authorization messages. This method involves receiving an authorization request message for a transaction and a session identifier from a transport computer or resource provider. It then obtains a portion of pre-analyzed user data from a database based on the session identifier, performs a risk analysis using this data to generate a value, and modifies the authorization request to include the data and value. The modified request is transmitted to an authorizing computer. In this scenario, the authorizing computer performs an additional analysis of the transaction, specifically leveraging the modified authorization request message, to generate its final authorization response.

Claim 16

Original Legal Text

16. The computer-implemented method of claim 1, wherein the session identifier provided in the authorization request message matches the session identifier stored in the supplemental database.

Plain English Translation

A computer-implemented method receives an authorization request message for a transaction and a session identifier from a transport computer or resource provider. The session identifier provided in this authorization request message precisely matches a session identifier already stored in a supplemental database. The method then uses this matching session ID to obtain pre-analyzed user data from the supplemental database, performs a risk analysis to generate a value, and modifies the authorization request to include the pre-analyzed data and the value. Finally, the modified request is transmitted to an authorizing computer.

Classification Codes (CPC)

Cooperative Patent Classification codes for this invention. Click any code to explore related patents in that topic.

Patent Metadata

Filing Date

October 17, 2018

Publication Date

March 19, 2024

Want to explore more patents?

Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.

Citation & reuse

Analysis on this page is generated by Patentable — an AI-powered patent intelligence platform. AI-generated summaries, explanations, FAQs, and analysis may be reused with attribution and a visible link back to the canonical URL below. Patent abstracts and claims are USPTO public domain.

Cite as: Patentable. “Systems and methods for enhanced authorization messages” (US-11936657). https://patentable.app/patents/US-11936657

© 2026 Nomic Interactive Technology LLC. Machine-readable context available at /api/llm-context/US-11936657. See llms.txt for full attribution policy.